|
|
|
|
±¸ºÐ |
±â´É |
Áö¿ø°¡´É DBMS |
Oracle, Oracle Exadata, Microsoft SQL Server, IBM DB2 (on LUW, z/OS and DB2/400), IBM IMS on z/OS, IBM Informix, IBM Netezza, SAP Sybase, Teradata, Oracle MySQL, PostgreSQL, Progress OpenEdge |
µ¥ÀÌÅͺ£À̽º °¨»ç |
SQL operation (raw or parsed), SQL response (raw or parsed), Database, Schema and Object, User name, Timestamp, Source IP, OS, application, Parameters used, Stored Procedures |
Àΰ¡ÀÚ °¨»ç |
¸ðµç ±ÇÇÑÀÚ È°µ¿, DDL and DCL, Schema º¯°æ (CREATE, DROP, ALTER), °èÁ¤ÀÇ »ý¼º,
¼öÁ¤, roles and privileges (GRANT, REVOKE) |
¹Î°¨µ¥ÀÌÅÍ |
Select ÀÇ ¼º°ø ¹× ½ÇÆÐÀÌ·Â |
¸ðµç µ¥ÀÌÅÍ º¯°æ ÀÌ·Â |
Stored Procedures |
»ý¼º, ¼öÁ¤, ½ÇÇà »çÇ× |
Triggers |
»ý¼º, ¼öÁ¤ »çÇ× |
°¨»çµ¥ÀÌÅÍ À§º¯Á¶ ¹æÁö |
º¯Á¶¹æÁö ÀúÀå¼Ò¿¡ °¨»çµ¥ÀÌÅÍ ÀúÀå, (Optional) °¨»çµ¥ÀÌÅÍÀÇ ¾ÏÈ£È ¶Ç´Â Digital ¼¸í,
°¨»çµ¥ÀÌÅÍ´Â Àбâ Àü¿ëÀ¸·Î ¼³Á¤ÇÏ°í ¿ªÇÒ±â¹Ý Á¢±ÙÅëÁ¦, °¨»çµ¥ÀÌÅÍÀÇ ½Ç½Ã°£ ·Î±ë |
ºÎÁ¤ÇàÀ§ ½Äº° |
Çã°¡µÇÁö ¾ÊÀº »ç¶÷ÀÌ ¹Î°¨µ¥ÀÌÅÍ Á¢±Ù |
ºñÁ¤»óÀûÀÎ È°µ¿ °¨Áö(½Ã°£ ¹× ¼Ò½º) |
¿¹»óÄ¡ ¸øÇÑ »ç¿ëÀÚ È°µ¿ |
µ¥ÀÌÅÍ À¯Ãâ È®ÀÎ |
ºÐ·ùµÈ µ¥ÀÌÅÍ¿¡ ´ëÇÑ ¿äû |
Çã°¡µÇÁö ¾ÊÀº ¶Ç´Â ºñÁ¤»óÀûÀÎ µ¥ÀÌÅÍ ÃßÃâ |
µ¥ÀÌÅͺ£À̽º º¸¾È |
µ¿Àû ÇÁ·ÎÆÄÀÏ(White List º¸¾È) |
ÇÁ·ÎÅäÄÝ °ËÁõ(SQL ¹× ÇÁ·ÎÅäÄÝ °ËÁõ) |
½Ç½Ã°£ Alert |
½Ç½Ã°£ À̺¥Æ® ¹× º¸°í¼
°ü¸® |
SNMP, Syslog, Email, »ç°í°ü¸® Ticket ÅëÇÕ, ÀÛ¾÷ ¿öÅ©Ç÷οì, ÅëÇÕ±×·¡ÇȺ¸°í, ½Ç½Ã°£
´ë½¬º¸µå |
°ü¸®´ë»ó ¼¹ö |
°ü¸®´ë»ó µ¥ÀÌÅͺ£À̼ ÀÚµ¿ µî·Ï |
µ¥ÀÌÅÍ °Ë»ö ¹× ºÐ·ù |
µ¥ÀÌÅͺ£À̽º ¼¹ö, À繫Á¤º¸, ½Å¿ëÄ«µå¹øÈ£, ½Ã½ºÅÛ ¹× ÀÀ¿ëÇÁ·Î±×·¥, °³Àνĺ°Á¤º¸,
»ç¿ëÀÚ Á¤ÀÇ µ¥ÀÌÅÍ Çü½Ä |
»ç¿ëÀÚ ±ÇÇÑ °ü¸®(Option) |
µ¥ÀÌÅͺ£À̽º Object¿¡ ´ëÇÑ »ç¿ëÀÚ ±ÇÇÑ °¨»ç, ¹Î°¨µ¥ÀÌÅÍ¿¡ ´ëÇÑ °úµµÇÑ ±ÇÇÑ È®ÀÎ,
ÈÞ¸é °èÁ¤ È®ÀÎ, »ç¿ëÀÚ ±ÇÇÑÀÇ º¯°æ ³»¿ë ÃßÀû |
Ãë¾àÁ¡ °ü¸® |
OS Ãë¾àÁ¡, DB Ãë¾àÁ¡, Configuration °áÇÔ, Risk Á¡¼ö ¹× °³¼± ÀýÂ÷ |
|
|
|